Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
genmud
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
61.
▲
by
genmud
3y ago
Yea... I don't know what the right solution is, but it feels like people are getting their brains significantly influenced, or rotted by the endless dopamine hits that social media bring them. I have a small kid and most of my tech fri
62.
▲
by
genmud
3y ago
I always find it ironic when reporters talk about surveillance when they have about 100 ad trackers, shoveling keywords of the articles to advertisers so they can track and show specific ads to you.
63.
▲
by
genmud
3y ago
You are making the assumption it is for long term habitation, which might not be the case. For long term habitation, you would solve it like any other engineering problem. How many people do you need to support, against what threats, for ho
64.
▲
by
genmud
3y ago
I don't think that the reporters have ever dealt with high security requirements. Things like safe rooms, underground evacuation routes and multiple secure egresses are not that uncommon for high net worth individuals. Some people have
65.
▲
by
genmud
3y ago
It was a view in response to the above post, not a generalized view I take on things. I’m actually a fan of embedding security resources into the eng teams and having those resources fix issues rather than toss shit over the wall. Knowing h
66.
▲
by
genmud
3y ago
> Ah, yes, this is the "start from the assumption that everything has failed" trick. I am actually fairly data driven, and it's why things like SBOMs are exciting. Based on my experience, if something is exposed to the wor
67.
▲
by
genmud
3y ago
As a cybersecurity person, probability is typically high since so many people release POCs and impact is almost always they steal all our IP and lock our computers, grinding business to a halt . CVSS is kind of helpful for triaging stuff
68.
▲
by
genmud
3y ago
They are similar, but different. Like ops is similar to eng, but different. For one, they can quantify downtime easier. Also, in most orgs, cybersecurity is responsible/accountable for the problems, but only can indirectly influence th
69.
▲
by
genmud
3y ago
Anyone in cybersecurity who isn't a fucking moron (of which I freely admit there are many), without a doubt knows the problems they solve are not unique. As someone who has done it for nearly 20 years, me and my colleagues absolutely d
70.
▲
by
genmud
3y ago
Cool, I agree with the author in concept, but there are so many goddamn engineers that ship incorrect/buggy/insecure software that if it wasn't its own function, nobody would even pretend to care. In my experience, most Proje
71.
▲
by
genmud
3y ago
In some orgs, that is the case. In other orgs, risk management might be a functionally absent, with legal teams being reviewers of contracts and abdicating that role to outside counsel.
72.
▲
by
genmud
3y ago
Privacy and smartphones are mutually exclusive depending on what your threat profile is. If your OS isn’t collecting telemetry, your ISP probably is. If somehow both of those aren’t, most phones modems have so many vulnerabilities in them a
73.
▲
by
genmud
3y ago
If (security) training worked, we wouldn’t have these issues. Even in highly regulated, controlled environments memory safety is still an issue. I have seen bugs in these environments where I know for a fact that the developer has had 40-
74.
▲
by
genmud
3y ago
I feel like tech generally doesn't represent the majority of the US. However, I don't believe quotas are the right way to do it. Active community engagement is the only way to get those numbers in line with modern demographics.
75.
▲
by
genmud
3y ago
If they weren't so expensive I would be purchasing one.
76.
▲
by
genmud
3y ago
Its status quo for almost all hardware. Your computers firmware/boot stack has probably some of the buggiest and error prone software you have running near you, unless you happen to be sitting in your car. It feels like a damn miracle
77.
▲
by
genmud
3y ago
Because everyone called it heartbleed. I still remember some of the big ones like MS03-026/031, MS08-067, CVE-2005-1042.
78.
▲
by
genmud
3y ago
> One of my biggest issues with PHP is that it doesn't cleanly separate the app and the system. Its probably been a couple decades since I looked at PHP stuff (like php4 was probably the last version I used, though PHP5 might have j
79.
▲
by
genmud
3y ago
Many universities will do this for a very inexpensive / low cost. I think the rates for my local university is like $100-150/hour for 50 micron scans?
80.
▲
by
genmud
3y ago
It looks like the automation api was introduced in 2021. (!!!) I stopped using it in like 2014 or 2015 after years of requesting improvements (like better ways to automate things without stuff breaking all the time).
81.
▲
by
genmud
3y ago
I have noticed most software maintenance / engineering decisionmaking over the last decade can be boiled down to “because you suck, and we hate you”.
82.
▲
by
genmud
3y ago
No, what thought process would make you even think that?
83.
▲
by
genmud
3y ago
That’s like the point of their whole ad platform. Because there aren’t great bids for inventory, it’s why you see so much temu/wish/marijuana ads. https://business.twitter.com/en/help/troubleshooting/
84.
▲
by
genmud
3y ago
I own a defense company, work on security stuff, I can assure you it is.
85.
▲
by
genmud
3y ago
Security predictions for next year: - Continued information operations by nation states using social media, trying to influence US elections, next year around this time (regardless of outcome) about 40% of the US population will believe the
86.
▲
by
genmud
3y ago
What is hilarious to me is the Liebert AC units are nearly the same design/footprint. When they went by, I was like holy shit, they are the exact same enclosure, down to the little rail thing in front! Just have LCDs instead of LEDs or
87.
▲
by
genmud
3y ago
If you sell software to the government you do. Which happens to be the biggest purchaser of software and touches others by proxy. E.G. you might provide software to Boeing who sells to the government, therefore Boeing has a legal obligation
88.
▲
by
genmud
3y ago
Nah, they really don’t. The fact solarwinds or equifax exist after such egregious security errors with a botched response at best or an intentional attempt at covering up the size/scope of the problems at worse should tell you everythi
89.
▲
by
genmud
3y ago
I don’t believe that this type of thing hasn’t happened, but the article talks about ISDN and even in the early 90s that wouldn’t be very common for a non branch office. Then they talk about traffic shaping/QOS and that’s when I call B
90.
▲
by
genmud
3y ago
... after record profits. > where the company reported a record gross quarterly profit of $1.9 billion. Not saying that businesses should not try to optimize, but it seems a bit of a dick move to post record profits and cut nearly 10% of
More ›